US10396992B2

Authentication of a user and/or a device through parallel synchronous update of immutable hash histories

Summary by NHIP

Parallel Hash History Authentication

The method authenticates users and devices by comparing identical device and profile root hashes derived from sequential hash histories. A transaction record is deposited as a new block in both histories, and a new profile root hash is computed to evolve the identity for future requests.

Claim Score by NHIP

Read claim 8, the broadest

Abstract

Disclosed is a method, a device, and/or a system of authentication of a user and/or a device through parallel synchronous update of immutable hash histories. In one embodiment, a computer-implemented method for authentication includes receiving an identity claim from a device that includes a device root hash of a hashed history of the device, referred to as a device hastory. Data of a user profile associated with the device that includes a profile root hash of a profile hastory is retrieved. The device root hash and the profile root hash are compared and determined to be identical to verify an identity of a user and/or a device. A transaction record is generated and deposited as a new block in both in the profile hastory and device hastory. A new profile root hash is computed to evolve the identity of the user profile for a prospective authentication request.

US10396992B2, drawing sheet 1
Sheet 1 of 36

Term

9.4 yearsleft in the term

Expires 19 February 2036, including 235 days of term adjustment.

  1. Priority
  2. Filed
  3. Granted
  4. Today
  5. Expires

20 claims: 3 independent, 17 dependent

  1. 1
    A computer-implemented method for authentication, the method comprising:receiving an authentication request from a first device;receiving an identity claim from at least one of the first device and a second device associated with the first device, the identity claim comprising a device root hash computed by a hash function using inputs comprising a previous transaction record along with a penultimate hash value of a hash history of the device, the hash history of the device referred to as a device hastory;retrieving data of a user profile associated with at least one of the first device and a user of the first device, the user profile comprising a hash history of the profile, referred to as a profile hastory, the profile hastory comprising a profile root hash computed by the hash function using inputs comprising the previous transaction record along with a penultimate hash value of the profile hastory, wherein the profile hastory comprising a set of blocks in a sequential chain, each block of the set of blocks including a transaction record of a set of previous transactions in which the at least one of the first device and the user participated;extracting the profile root hash from the user profile associated with at least one of the first device and the user of the first device;comparing the device root hash of the device hastory with the profile root hash of the profile hastory to verify an identity of at least one of the first device and the user of the first device;determining that the device root hash and the profile root hash are identical;andvalidating the identity of at least one of the device and the user of the device.
  2. 8
    Broadest claimClaim Score 40, average(NHIP)A computer-implemented method for authenticating a user in association with an authorization request, the method comprising:receiving an authorization request from a device to utilize a protected resource stored in a datastore of a server;receiving an identity claim from at least one of the first device and a second device associated with the first device, the identity claim comprising a device root hash computed by a hash function dependent on a dataset comprising one or more transaction records of previous identity claims;retrieving data of a user profile associated with at least one of the first device and a user of the first device, the user profile comprising a hash history of the profile, referred to as a profile hastory, wherein the profile hastory comprising a set of blocks in a sequential chain, the set of blocks comprising one or more transaction records of previous identity claims;extracting the profile root hash from the user profile associated with at least one of the first device and the user of the first device;comparing the device root hash with the profile root hash of the profile hastory to verify an identity of at least one of the first device and the user of the first device;anddetermining that the device root hash and the profile root hash are identical.
  3. 15
    A system comprising:a datastore server, to: store a protected resource and transmit the protected resource to a first device upon authentication of at least one of the first device and a user of the first device;a network;a mediation server, to: receive at least one of an authentication request from the first device to access the datastore and an authorization request from the first device to utilize the protected resource, andreceive an identity claim from the device comprising a device root hash;a profile server, to: transmit data of a user profile associated with at least one of the first device and the user of the first device, the user profile comprising a hash history of the profile, referred to as a profile hastory, the profile hastory comprising a profile root hash computed by the hash function with inputs comprising a previous transaction record along with a penultimate hash value of the profile hastory, wherein the profile hastory comprising a set of blocks in a sequential chain, each block of the set of blocks including a transaction record of a set of previous transactions in which the at least one of the first device and the user participated;andthe first device, to: transmit the identity claim comprising the device root hash, the hash value computed by a hash function with inputs comprising a previous transaction record along with a penultimate hash value of a hash history of the device, the hash history of the device referred to as a device hastory.